Privacy Policy
Effective Date: January 1, 2025
Introduction
OnyxMD is a brand name of Curated Care LLC. We ("Curated Care LLC," "OnyxMD," "our," or "us") are committed to protecting your privacy and ensuring the security of your personal and health information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our website and telehealth services.
We comply with the Health Insurance Portability and Accountability Act (HIPAA) and all applicable state and federal privacy laws. By using our services, you consent to the practices described in this Privacy Policy.
HIPAA Compliance
We are HIPAA-compliant. Your protected health information (PHI) is handled in accordance with HIPAA regulations. We maintain physical, technical, and administrative safeguards to protect your PHI from unauthorized access, use, or disclosure.
Information We Collect
Personal Information
- Name, date of birth, and contact information
- Billing and shipping addresses
- Payment information (processed securely by third-party providers)
- Government-issued ID for verification purposes
- Email address and phone number
Health Information
- Medical history and current health conditions
- Medications and allergies
- Treatment preferences and goals
- Consultation notes from healthcare providers
- Prescription information
Technical Information
- IP address and browser information
- Device type and operating system
- Cookies and usage data
- Pages visited and time spent on our site
How We Use Your Information
We use your information for the following purposes:
- To provide telehealth consultations and medical services
- To process prescriptions and deliver medications
- To communicate with you about your treatment
- To process payments and manage your account
- To comply with legal and regulatory requirements
- To improve our services and user experience
- To send important updates about our services
- To prevent fraud and ensure security
How We Share Your Information
We may share your information with:
Healthcare Partners
Beluga Health, P.A. - Our telehealth provider partner
Strive Pharmacy LLC - Our pharmacy partner for prescription fulfillment
These partners are bound by HIPAA regulations and privacy agreements.
Other Authorized Sharing
- With your explicit consent
- To comply with legal obligations or court orders
- To protect rights, safety, or property
- In connection with a business transaction (merger, acquisition)
- To service providers who assist in our operations (under strict confidentiality agreements)
We NEVER sell your personal or health information to third parties.
Data Security
We implement comprehensive security measures to protect your information:
- 256-bit SSL encryption for all data transmission
- Secure, HIPAA-compliant data storage
- Regular security audits and assessments
- Restricted access to personal and health information
- Employee training on privacy and security protocols
- Incident response procedures for potential breaches
Your Rights
Under HIPAA and applicable privacy laws, you have the right to:
- Access your personal and health information
- Request corrections to your records
- Request restrictions on how we use your information
- Request confidential communications
- Receive a copy of this Privacy Policy
- File a complaint if you believe your privacy rights have been violated
- Request deletion of your account (subject to legal retention requirements)
To exercise these rights, please contact us at support@getonyxmd.com or call +1 (206) 814-5447.
Data Retention
We retain your information for as long as necessary to:
- Provide our services to you
- Comply with legal and regulatory requirements
- Resolve disputes and enforce agreements
- Maintain records as required by medical regulations
Medical records are retained in accordance with state and federal requirements, typically for a minimum of 7 years after the last date of service.
Cookies and Tracking Technologies
We use cookies and similar technologies to:
- Maintain your session and preferences
- Analyze site traffic and usage patterns
- Improve our services and user experience
- Provide personalized content
You can control cookies through your browser settings. However, disabling cookies may limit your ability to use certain features of our service.
Third-Party Services
We use trusted third-party services for:
- Payment processing (credit cards, Apple Pay, PayPal)
- Analytics and performance monitoring
- Customer support tools
- Email communications
These services have their own privacy policies and are required to protect your information according to our agreements with them.
Children's Privacy
Our services are not intended for individuals under 18 years of age. We do not knowingly collect personal information from children. If we become aware that we have collected information from a child under 18, we will take steps to delete that information.
State-Specific Privacy Rights
California Residents
Under the California Consumer Privacy Act (CCPA), California residents have additional rights, including the right to know what personal information we collect, the right to delete personal information, and the right to opt-out of the sale of personal information (which we do not do).
Other States
Residents of other states may have additional privacy rights under state law. Please contact us for more information about your specific rights.
International Users
Our services are intended for use within the United States. If you access our services from outside the United States, please be aware that your information may be transferred to, stored, and processed in the United States where our servers are located.
Updates to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. We will notify you of any material changes by posting the new Privacy Policy on our website and updating the effective date. Your continued use of our services after such changes constitutes acceptance of the updated policy.
Contact Information
If you have questions or concerns about this Privacy Policy or our privacy practices, please contact us:
Curated Care LLC (DBA OnyxMD) Privacy Officer
Email: support@getonyxmd.com
Phone: +1 (206) 814-5447
Address: 1309 Coffeen Avenue, Sheridan, WY 82801, United States
How to File a Complaint
If you believe your privacy rights have been violated, you may file a complaint with:
- Curated Care LLC (DBA OnyxMD) directly using the contact information above
- The U.S. Department of Health and Human Services Office for Civil Rights at www.hhs.gov/ocr
- Your state's attorney general or health department
We will not retaliate against you for filing a complaint.
Last Updated: January 2025 | Version 1.0 | HIPAA Compliant